Hosts
No hosts contacted.
TCP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49192 |
113.108.239.194 r1---sn-j5o7dn7e.gvt1.com |
80 |
| 192.168.56.101 |
49193 |
113.108.239.196 r3---sn-j5o7dn7e.gvt1.com |
80 |
| 192.168.56.101 |
49180 |
113.16.209.193 support.apple.com |
443 |
| 192.168.56.101 |
49183 |
124.225.105.97 www.download.windowsupdate.com |
80 |
| 192.168.56.101 |
49191 |
203.208.41.65 redirector.gvt1.com |
80 |
| 192.168.56.101 |
49189 |
203.208.41.98 update.googleapis.com |
443 |
| 192.168.56.101 |
49173 |
23.2.76.134 support.microsoft.com |
443 |
| 192.168.56.101 |
49187 |
23.2.76.134 support.microsoft.com |
443 |
| 192.168.56.101 |
49184 |
23.218.96.6 www.intel.com |
443 |
| 192.168.56.101 |
49185 |
23.218.96.6 www.intel.com |
443 |
| 192.168.56.101 |
49176 |
23.9.89.201 support.oracle.com |
443 |
| 192.168.56.101 |
49177 |
23.9.89.201 support.oracle.com |
443 |
UDP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49713 |
114.114.114.114 |
53 |
| 192.168.56.101 |
50320 |
114.114.114.114 |
53 |
| 192.168.56.101 |
51963 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53380 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53500 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53661 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57089 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57756 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60088 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60123 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60215 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60221 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60384 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60966 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62144 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62191 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62912 |
114.114.114.114 |
53 |
| 192.168.56.101 |
64118 |
114.114.114.114 |
53 |
| 192.168.56.101 |
137 |
192.168.56.255 |
137 |
| 192.168.56.101 |
138 |
192.168.56.255 |
138 |
HTTP & HTTPS Requests
| URI |
Data |
| http://redirector.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe |
HEAD /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: redirector.gvt1.com
|
| http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1
Cache-Control: max-age = 3600
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT
If-None-Match: "0d8f4f3f6fd71:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: www.download.windowsupdate.com
|
| http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1
Cache-Control: max-age = 900
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT
If-None-Match: "0d8f4f3f6fd71:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: www.download.windowsupdate.com
|
| http://r3---sn-j5o7dn7e.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?mh=ms&mvi=3&pl=17&shardbypass=yes&redirect_counter=1&rm=sn-j5ok7e&req_id=33be3ccb6a911403&cms_redirect=yes&ipbypass=yes&mip=59.50.85.19&mm=28&mn=sn-j5o7dn7e&ms=nvh&mt=1619489065&mv=m |
HEAD /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?mh=ms&mvi=3&pl=17&shardbypass=yes&redirect_counter=1&rm=sn-j5ok7e&req_id=33be3ccb6a911403&cms_redirect=yes&ipbypass=yes&mip=59.50.85.19&mm=28&mn=sn-j5o7dn7e&ms=nvh&mt=1619489065&mv=m HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: r3---sn-j5o7dn7e.gvt1.com
|
| http://r1---sn-j5o7dn7e.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?cms_redirect=yes&mh=ms&mip=202.100.214.100&mm=28&mn=sn-j5o7dn7e&ms=nvh&mt=1619489065&mv=m&mvi=1&pl=23&shardbypass=yes |
HEAD /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?cms_redirect=yes&mh=ms&mip=202.100.214.100&mm=28&mn=sn-j5o7dn7e&ms=nvh&mt=1619489065&mv=m&mvi=1&pl=23&shardbypass=yes HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: r1---sn-j5o7dn7e.gvt1.com
|
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts